Top
Best
New

Posted by c420 3 hours ago

Rockstar Games Hacked, Hackers Threaten a Massive Data Leak If Not Paid Ransom(kotaku.com)
58 points | 31 comments
cbg0 2 hours ago|
Update: 4/11/26, 11:45 a.m. ET: Rockstar Games confirmed that a data breach has happened. A spokesperson sent over this statement to Kotaku:

“We can confirm that a limited amount of non-material company information was accessed in connection with a third-party data breach. This incident has no impact on our organization or our players.”

plmpsu 1 hour ago|
That's what I would say regardless of if I was considering paying or not.
embedding-shape 2 hours ago||
> “Rockstar Games, your Snowflake instances were compromised thanks to Anodot.com. Pay or leak. This is a final warning to reach out by 14 Apr 2026 before we leak, along with several annoying (digital) problems that’ll come your way. Make the right decision, don’t be the next headline.”

Anyone familiar with "Snowflake" enough to say what sort of data was typically hosted there? Judging by the website and the lack of specifics about the data, I'm guessing it's less about assets, artifacts and stuff like that, and more about financial data and general/generic "business" stuff?

Maxion 1 hour ago||
In my experienced Snowflake is often used as a data warehouse.
tempaccount5050 1 hour ago|||
I've seen companies literally mirror every piece of data they have in snowflake to do AI/analytics stuff. There's probably a lot of of shit in there.
ziml77 30 minutes ago|||
Snowflake is typically used for data analytics in my experience. It's going to have financial stuff very likely, but not like raw documents. Definitely not source code.

I mean technically you can stuff documents into a column with the BINARY datatype provided they are under 67 MB each, but it's not really meant to be used as a document store.

hilariously 2 hours ago||
It's a database, but you could store basically any OLAP type things there, all your stuff for aggregate customer data for instance.
embedding-shape 1 hour ago||
Sure, but some databases are sold/bought more by brand recognition and for the type of data rather than actual technical capabilities. Don't ask me why, just very familiar with people making those sort of choices.
chistev 1 hour ago||
Coincidentally and Interestingly, again, I was reading an old thread from 2015 titled - ProtonMail pays $6k ransom, gets taken out by DDoS anyway

The top comment says -

"NEVER EVER PAY RANSOM MONEY. Please. Even if your business will suffer it will suffer a lot more if you do pay since now it is known you'll cave. Also: you are making the problem larger for others."

The top response to that comment says -

"From their blog: https://protonmaildotcom.wordpress.com/ At around 2PM, the attackers began directly attacking the infrastructure of our upstream providers and the datacenter itself. The coordinated assault on our ISP exceeded 100Gbps and attacked not only the datacenter, but also routers in Zurich, Frankfurt, and other locations where our ISP has nodes. This coordinated assault on key infrastructure eventually managed to bring down both the datacenter and the ISP, which impacted hundreds of other companies, not just ProtonMail.

At this point, we were placed under a lot of pressure by third parties to just pay the ransom, which we grudgingly agreed to do at 3:30PM Geneva time to the bitcoin address 1FxHcZzW3z9NRSUnQ9Pcp58ddYaSuN1T2y. This was a collective decision taken by all impacted companies, and while we disagree with it, we nevertheless respected it taking into the consideration the hundreds of thousands of Swiss Francs in damages suffered by other companies caught up in the attack against us. We hoped that by paying, we could spare the other companies impacted by the attack against us, but the attacks continued nevertheless. This was clearly a wrong decision so let us be clear to all future attackers – ProtonMail will NEVER pay another ransom. "

Full thread here -

https://news.ycombinator.com/item?id=10523583

ronsor 1 hour ago|
Most hackers actually keep their promises if paid the ransom, nowadays.

It sounds perverse but the incentives require it: if payment didn't bring resolution, no one would pay. As a result, all of the big gangs avoid scamming.

mh- 1 hour ago|||
That was the state of play in 2015 as well. In the absence of a claim from the group otherwise, I wouldn't be surprised if they simply couldn't get it to stop (on a technical level.)

Way back when, it was a pretty common screwup to accidentally saturate the nodes you were packeting from. So then your C&C couldn't get them to respond, either. Oops.

nicce 1 hour ago||||
Yeah, this business is based on actually delivering the promise.
2OEH8eoCRo0 14 minutes ago||||
The point is that by paying you incentivize it and make it worthwhile not that the hackers keep promises.
chistev 1 hour ago|||
That makes sense. They should pay, then.
seydor 2 hours ago||
How fitting with their games. They should include the hackers in GTA7
bsimpson 18 minutes ago||
Holy shit - according to the same article, an autistic teen last hacked them and was sentenced to life in an asylum!
rundigen12 2 hours ago||
I honestly expected the demand to be "Release GTA 6 soon or else we will". ...The fact that they're just demanding money is a little disappointing. ;-)
gloxkiqcza 2 hours ago|
Many ransomware groups of today operate in the same way a legal tech startup would. It’s a large organization with clear goals, not just some guys fooling around. It’s a funny thought tho.
specialist 43 minutes ago|||
How do laypersons (noobs) like me learn about this stuff? Like Wired magazine technical level.

I've just started Darknet Diaries podcast. So great.

When I worked on electronic medical records, I assumed it was just a matter of time until we were hacked (too). All the most banal reasons: many vendors, shared passwords, root/admin access, etc.

I imagine things haven't improved much since.

robotburrito 1 hour ago|||
Yeah but large tech companies don’t just operate by breaking laws like this.
potsandpans 50 minutes ago|||
You sure about that?
luqtas 1 hour ago||||
laws that allow big players hurt minorities are any good? Rockstar recently had a strike from their workers by their abuse and layoffs
EA-3167 1 hour ago||||
Sure they do, Uber is probably the most famous in that regard, but plenty break things and pay a fine later.

In fact I’d say that sort of law breaking is downright routine. The key difference is the ability to afford a really good legal and lobbying team.

mschuster91 1 hour ago||
Please, please let that leak be the source code of GTA SA :D
gaythread 2 hours ago||
Do we not have GTA5 source already?
bakugo 2 hours ago||
Yes, but GTA5 leaked a decade after its release. Rockstar didn't really suffer any significant damage from it.

If 6 leaks before release, though, that's a completely different story. I can imagine them actually paying a ransom if that happened.

dvratil 1 hour ago||
Maybe I'm missing something, but how would GTA6 source leak really harm Rockstar? I mean it's unlikely it would be possible to compile a full working game from the leak, and even if so, it's such a non-trivial task, that I don't believe it would hurt sales /that/ much.

The only thing I can imagine is the story would get spoiled on the internet, but that's about it.

mh- 1 hour ago|||
I feel the need to say it shouldn't be this way, to avoid an onslaught of replies, but:

It would be dramatically easier to discover and exploit vulnerabilities/glitches in their multiplayer experience, which is their cash cow.

3eb7988a1663 41 minutes ago||
On the other hand, maybe the community could submit bug fixes for loading times.

https://news.ycombinator.com/item?id=26296339

mgol94 1 hour ago|||
I would speculate that it’s not about individuals compiling and playing without paying, but that with access to the codebase, creating cracks and online cheats would be trivial, which might actually hurt their bottom line
eugenekolo 1 hour ago||
..again?
c420 2 hours ago|
[dead]